cmdmon.sys in Comodo Firewall Pro (formerly Comodo Personal Firewall) 2.4.16.174 and earlier does not validate arguments that originate in user mode for the (1) NtCreateSection, (2) NtOpenProcess, (3) NtOpenSection, (4) NtOpenThread, and (5) NtSetValueKey hooked SSDT functions, which allows local users to cause a denial of service (system crash) and possibly gain privileges via invalid arguments.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2007-02-04T00:00:00

Updated: 2024-08-07T12:26:54.241Z

Reserved: 2007-02-03T00:00:00

Link: CVE-2007-0709

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2007-02-04T00:28:00.000

Modified: 2018-10-16T16:33:53.527

Link: CVE-2007-0709

cve-icon Redhat

No data.